cosmoscrew / ssrf-playground
A playground to practice SSRF Attacks against web apps
☆17Updated 6 years ago
Alternatives and similar repositories for ssrf-playground:
Users that are interested in ssrf-playground are comparing it to the libraries listed below
- A tool that can help detect and takeover subdomains with dead DNS records☆12Updated 6 years ago
- Everything about xss protection technology☆15Updated 5 years ago
- Scripts for OSCE☆18Updated 6 years ago
- String or worldlist encoder for use in fuzzing or web application testing☆19Updated 5 years ago
- A multi-threaded scanner that helps identify CORS flaws/misconfigurations☆19Updated 5 years ago
- ☆20Updated 5 years ago
- A Burp Extender plugin that will allow you to tamper with requests containing compressed, serialized java objects.☆24Updated 6 years ago
- A Burp Suite content discovery plugin that add the smart into the Buster!☆31Updated 7 years ago
- View screenshots as a slideshow over http☆15Updated 5 years ago
- The Recon scanning tool scans websites for open files & directories specified in the custom config file. Default server configuration fil…☆15Updated 7 years ago
- A better dns bruteforcer written in golang☆13Updated 6 years ago
- A penetration testing tool to enumerate and analyse Amazon S3 Buckets owned by a domain.☆26Updated 6 years ago
- Slides of the talk on Injection attacks in apps with NoSQL Backends, given at null OWASP Bangalore monthly meet on 27th April 2019☆22Updated 6 years ago
- Burp Extension for copying requests safely. It redacts headers like Cookie, Authorization and X-CSRF-Token for now. More support can be a…☆17Updated 4 years ago
- Python tool for expired domain discovery in crossdomain.xml files☆24Updated 8 years ago
- Golang code to crawl website, extract links from html, paths from JavaScript code, follow and repeat.☆12Updated 6 years ago
- This is a Burpsuite plugin built to enable you to import your directory bruteforcing results into burp for easy viewing later. This is an…☆36Updated 2 years ago
- Some Pentesting Scripts☆11Updated 3 years ago
- OWASP ZAP add-on to detect reflected parameter vulnerabilities efficiently☆12Updated 4 years ago
- Supporting material for the "Hunting Bugs In The Tropics" DEFCON 30 talk☆9Updated 2 years ago
- PHP tool to test XSS☆22Updated 5 years ago
- A simple tool with the power of "Go" to find the hidden Vhosts defined at the server.☆19Updated 6 years ago
- Useful Windows and AD tools☆15Updated 3 years ago
- Simple webinterface combining different recon tools.☆12Updated 7 years ago
- Alpha version code of Recon UI☆14Updated 7 years ago
- Automated Payload Test Controller☆9Updated 7 years ago
- Bug Bounty Clipboard☆17Updated 5 years ago
- Take a list of URIs and print all the of the paths☆10Updated 4 years ago
- Static analysis of APKs with regular expressions☆10Updated 3 years ago
- A tool for checking a hash:pass pot file for hashes from a user:hash file☆12Updated 8 years ago